Hello @deepseek_ai,
I have sent an email to [email protected] regarding a critical vulnerability that could allow attackers to access your database exposing sensitive data including API KEYS. I strongly recommend addressing this issue as soon as possible.
@coffinxp7@tonystubblebine@Medium Is it good practice to ask first if the program is active? 🤔 this scares me
Spending a lot of time and you get ignored
Id like it better if its a duplicate than no response 🤔😅
If a company does not take your legal vulnerability disclosure seriously and is critical or has high impact if exploited, how do you disclose it so others can check if they are affected?
Authorized Data Publisher? CVE Numbering Authority (CNA)? CVE Program?
#BugBounty
CVE-2024-49112 🚨🔥
Critical RCE vulnerability affecting the Windows LDAP Client with a CVSS score of 9.8. This vulnerability could allow an unprivileged attacker to run arbitrary code on an Active Directory Server by sending a specialized set of LDAP calls to the server.
🛡️Microsoft recommends that all Active Directory servers be configured to not accept Remote Procedure Calls (RPCs) from untrusted networks in addition to patching this vulnerability.
Day 1: 0-100k in Bug Bounty
1.Started with Understanding Bug Bounty Platforms
2.Studying OWASP Top 10 (2021)
3. Writing down Http error codes
4. Practising Portswigger academy.
Following and learning from the best
@techycodec08@Rhynorater
All my current bug bounty knowledge is gone.
Here's how I get it back and make $100k in the first year:
First, I've got to learn the basics. For this, I will make sure I understand at a high level how the components I'm working with function.
I'll need to understand...
tried something new for the Bug Hunting community i hope this will help in there hunting jurney ❤️
site:https://t.co/eC3MzUgc8e
special thanks to my team @1hehaq and @javxfps to make it more better..
I changed my job for a better opportunity & to stay with my family last month, so I didn't have time to engage in hacking. I only reported 1 bug last month as I was too busy with handovers. I started hacking again last week, and now, three ctits in a row. #bugbounty.
Hi everyone! I have discovered a vulnerability within a rapidly growing NFT marketplace. This vulnerability has the potential to compromise users' NFT wallets, utilizing both (IDOR) and (XSS).
https://t.co/G9WOYAfPYW
#bugbountytip#bugbountytips#infosec#hackerone#nft#Crypto